Remote Exploit Forums

Go Back   Remote Exploit Forums > Archives > BackTrack v2.0 Final > Tutorials & Guides


Tutorials & Guides Contributions welcome! Please check the rules & guidelines for posting

Closed Thread
 
LinkBack Thread Tools Display Modes
  #11 (permalink)  
Old 09-12-2007, 01:22 AM
pureh@te's Avatar
Jenkem Addict
 
Join Date: Mar 2007
Location: /dev/null
Posts: 5,401
Default

That's odd. normally 139 and 445 are open by default on xp. the only thing I could think of is if your running a after market firewall. anyway the are more entry vectors which hope fully I will include in part 2 of so you want to be a hacker. If you feel comfortable doing so post a nmap scan and well see what we go and maby some one else can learn something too.
  #12 (permalink)  
Old 09-12-2007, 01:36 AM
-~operator~-'s Avatar
Senior Member
 
Join Date: Apr 2007
Location: Black Forest
Posts: 173
Default

well, don't count me on this. i will check the PC tomorrow and see how it's configured. Nmap scan follows ASAP. Thanks purehate!
__________________
The answer is 42.
  #13 (permalink)  
Old 09-22-2007, 09:00 AM
wyze's Avatar
Jenkem Addict
 
Join Date: Jul 2007
Location: chmod 400
Posts: 1,593
Default

Quote:
Originally Posted by purehate View Post
That's odd. normally 139 and 445 are open by default on xp.
...as are many other exploitables by default... I've been scratching my head since day one as to how services like upnp and remote registry are automatic out of the box

Awesome tutorial PH... I bet this tut will help others get motivated in learning how to secure their shares after reading it
__________________
dd if=/dev/swc666 of=/dev/wyze
  #14 (permalink)  
Old 12-26-2007, 06:24 AM
Junior Member
 
Join Date: Jul 2007
Posts: 22
Default

I even have the Status "filtered" on Port 139 -
I have this Status on all Ports.
Its my active Firewall.
After shutdown the Firewall the Port 139 is still open and the Tut works really fine!


One Question.

I tested this on my network.
But is there a possibility to do this right from the internet and not in the netwok, with the real IP, when the Port is not blocked?

Last edited by internet0815; 12-26-2007 at 06:28 AM.
  #15 (permalink)  
Old 12-26-2007, 07:20 AM
sonicboom's Avatar
Junior Member
 
Join Date: Dec 2007
Posts: 14
Default

you let your girlfriend use Windows ME?
*shudders*
__________________
System Specs:
Linux Mint 6 - Primary OS
Windows XP Sp3 - Work / Gaming OS
BackTrack 3 USB w/ Changes -Fun Times OS

Wireless:
Dell WLAN Mini broadcom -eth0
WUSB54GC - rausb0
2 x Alfa AWUS036H 500mW -wlan0
  #16 (permalink)  
Old 12-27-2007, 11:08 PM
Just burned his ISO
 
Join Date: Dec 2007
Posts: 3
Default

i don't want to be mean, its great stuff you showed how to use those tools, but what did you do that you couldn't do with windows explorer?
  #17 (permalink)  
Old 12-28-2007, 10:16 PM
trevelyn's Avatar
Senior Member
 
Join Date: Mar 2006
Location: pittsburgh PA
Posts: 136
Send a message via AIM to trevelyn Send a message via Yahoo to trevelyn Send a message via Skype™ to trevelyn
Default

thats not being "mean" he states that the article is not his...

yeah if you're within the LAN you could simply issue a "smbtree -N" for that info. 3 things i dont get:

1. how does that make one a hacker?

2. "As high speed connections proliferate, more and more windows clients are coming on the internet. " ? how is that proportioned? There's more windows clients "coming" on the internet because of lack of intelligence, and corporations that dont care.

3. I think more people have NAT devices than not and if so, that means the port in the gateway/router would have to be forwarded from the WAN to the machine hosting the service on the LAN to "exploit" it. Though, i guess "exploit" doesnt seem to fit in this thread, and "accessing shared files that are not yours is most certainly a crime." heh, if they're shared, they're shared. if not, then they are not yours.

im glad YOU didn't write that article, cos its worthless. the only thing I see someone gaining out of it is bad networking skills.

also to mount things using the GUI you can use windows explorer. I use Nautilus and just put smb:/// in the address bar.
  #18 (permalink)  
Old 12-28-2007, 11:01 PM
pureh@te's Avatar
Jenkem Addict
 
Join Date: Mar 2007
Location: /dev/null
Posts: 5,401
Default

I'll be waiting for a much better tutorial from you with proof of concept. Post it by tomorrow please.


Edit: The point of the article was in reference to a lot of people wanting to know how to access shares on a windows box with bt2. I like to only use the tools included in the Distro so every one is one the same page. I'm sorry you didn't like it.

Last edited by pureh@te; 12-28-2007 at 11:31 PM.
  #19 (permalink)  
Old 12-29-2007, 12:49 AM
trevelyn's Avatar
Senior Member
 
Join Date: Mar 2006
Location: pittsburgh PA
Posts: 136
Send a message via AIM to trevelyn Send a message via Yahoo to trevelyn Send a message via Skype™ to trevelyn
Default

i have no idea why a tutorial on that is needed. I was under the impression it was to start someone off as being a hacker due to the title. I didn't know you would get offensive by the remark as you saidd it wasn't written by you.

"I've had a lot of questions about exploiting lately so here is step one."

and again, nothing is exploited, even if they do need help with bt2 mounting smb shares.

here:

http://zombie.el.cx/texts/hacking/pdfs/smbshares.pdf

If someone is eager to learn more about SIMPLE introductory hacking try this:

http://zombie.el.cx/texts/hacking/pdfs/pentesing.pdf

i realize theres an error about the missing "k" behind the 50 in the WEP section.

I only want to help, I have experience from Weak-Net Labs and have been using the security distros since WHAX! and Auditor.
  #20 (permalink)  
Old 12-29-2007, 12:55 AM
spankdidly's Avatar
Senior Member
 
Join Date: Feb 2006
Posts: 1,094
Default

Lol, I think you made fun of the other tutorial so someone would respond and then you could respond by posting "your's". Next time, just start a new thread and say "Hey, I have some tutorials" because that's a bit quicker, and there's less drama in the forums.
__________________
I felt like bending the bars back, and ripping out the window frames and eating them. yes, eating them! Leaping, leaping, leaping! Colonics for everyone! All right! You dumb*sses. I'm a mental patient. I'm *supposed* to act out!
Closed Thread

Bookmarks

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On



All times are GMT. The time now is 10:48 PM.


Powered by vBulletin® Version 3.8.4
Copyright ©2000 - 2009, Jelsoft Enterprises Ltd.
Search Engine Optimization by vBSEO 3.3.2